<div dir="ltr"><div class="gmail_default" style="font-family:'trebuchet ms',sans-serif">Thanks Sumit.</div><div class="gmail_default" style="font-family:'trebuchet ms',sans-serif"><br></div><div class="gmail_default" style="font-family:'trebuchet ms',sans-serif">From the logs there is nothing unusual around the time of core dump. I found this one line odd though.</div><div class="gmail_default" style="font-family:'trebuchet ms',sans-serif"><br></div><blockquote style="margin:0 0 0 40px;border:none;padding:0px"><div class="gmail_default" style=""><font face="monospace, monospace"><b>Jan 26 03:15:58 <a href="http://ipa.example.net">ipa.example.net</a> krb5kdc[4471](Error): worker 4473 exited with status 134</b></font></div></blockquote><div class="gmail_default" style=""><font face="trebuchet ms, sans-serif"><br></font></div><div class="gmail_default" style=""><font face="trebuchet ms, sans-serif">Let me try to get the full BT. </font></div></div><div class="gmail_extra"><br><div class="gmail_quote">On 28 January 2016 at 13:54, Sumit Bose <span dir="ltr"><<a href="mailto:sbose@redhat.com" target="_blank">sbose@redhat.com</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><span class="">On Thu, Jan 28, 2016 at 10:25:53AM +0530, Prashant Bapat wrote:<br>
> Hi,<br>
><br>
> We have a FreeIPA 4.1.4 setup on F21 servers. There is 1 master and 7<br>
> replicas in different regions. Earlier there was only 1 replica. Since I<br>
> added new replicas, on the master node, once in a while the kerberos<br>
> process dumps core and everything stops working - authentication,<br>
> replication etc. If we restart everything using "ipactl restart" things are<br>
> back to normal.<br>
><br>
> Attached is the output from journalctl for kerberos.<br>
><br>
> Has anyone come across this ? Are there any pointers to troubleshooting<br>
> this ?<br>
<br>
</span>This might be fixed recently by a patch from Simo<br>
(2144b1eeb789639b8a3df287b580aeb6196188a8). But to help to better<br>
identify the issue the content of the kdc logs around the time of the<br>
crash might be useful. Additionally a full backtrace which you can get<br>
by calling<br>
<br>
coredumpclt gdb 4475<br>
<br>
and then<br>
<br>
bt full<br>
<br>
bye,<br>
Sumit<br>
<span class=""><br>
><br>
> Any help is appreciated.<br>
><br>
> Thanks.<br>
> --Prashant<br>
<br>
</span>> Jan 26 03:15:59 <a href="http://ipa.example.net" rel="noreferrer" target="_blank">ipa.example.net</a> systemd-coredump[5000]: Process 4475 (krb5kdc) of user 0 dumped core.<br>
><br>
> Stack trace of thread 4475:<br>
> #0 0x00007f99de8c18d7 raise (libc.so.6)<br>
> #1 0x00007f99de8c353a abort (libc.so.6)<br>
> #2 0x00007f99de8ba47d __assert_fail_base (libc.so.6)<br>
> #3 0x00007f99de8ba532 __assert_fail (libc.so.6)<br>
> #4 0x00007f99d783a78f ldap_get_values_len (libldap_r-2.4.so.2)<br>
> #5 0x00007f99d7c8173e ipadb_ldap_attr_to_int (ipadb.so)<br>
> #6 0x00007f99d7c83f9c ipadb_parse_ldap_entry (ipadb.so)<br>
> #7 0x00007f99d7c849ab ipadb_get_principal (ipadb.so)<br>
> #8 0x00007f99e0433b14 krb5_db_get_principal (libkdb5.so.7)<br>
> #9 0x000055768457c230 process_tgs_req (krb5kdc)<br>
> #10 0x0000557684579fe3 dispatch (krb5kdc)<br>
> #11 0x000055768458d8a0 process_packet (krb5kdc)<br>
> #12 0x00007f99dec4cc78 verto_fire (libverto.so.1)<br>
> #13 0x00007f99d6fb72a3 epoll_event_loop_once (libtevent.so.0)<br>
> #14 0x00007f99d6fb5787 std_event_loop_once (libtevent.so.0)<br>
> #15 0x00007f99d6fb1fed _tevent_loop_once (libtevent.so.0)<br>
> #16 0x00007f99dec4c3f7 verto_run (libverto.so.1)<br>
> #17 0x00005576845795ab main (krb5kdc)<br>
> #18 0x00007f99de8acfe0 __libc_start_main (libc.so.6)<br>
> #19 0x00005576845798f0 _start (krb5kdc)<br>
><br>
> Jan 26 03:15:59 <a href="http://ipa.example.net" rel="noreferrer" target="_blank">ipa.example.net</a> systemd-coredump[4999]: Process 4473 (krb5kdc) of user 0 dumped core.<br>
><br>
> Stack trace of thread 4473:<br>
> #0 0x00007f99de8c18d7 raise (libc.so.6)<br>
> #1 0x00007f99de8c353a abort (libc.so.6)<br>
> #2 0x00007f99de8ba47d __assert_fail_base (libc.so.6)<br>
> #3 0x00007f99de8ba532 __assert_fail (libc.so.6)<br>
> #4 0x00007f99d783a78f ldap_get_values_len (libldap_r-2.4.so.2)<br>
> #5 0x00007f99d7c8173e ipadb_ldap_attr_to_int (ipadb.so)<br>
> #6 0x00007f99d7c83f9c ipadb_parse_ldap_entry (ipadb.so)<br>
> #7 0x00007f99d7c849ab ipadb_get_principal (ipadb.so)<br>
> #8 0x00007f99e0433b14 krb5_db_get_principal (libkdb5.so.7)<br>
> #9 0x000055768457c230 process_tgs_req (krb5kdc)<br>
> #10 0x0000557684579fe3 dispatch (krb5kdc)<br>
> #11 0x000055768458d8a0 process_packet (krb5kdc)<br>
> #12 0x00007f99dec4cc78 verto_fire (libverto.so.1)<br>
> #13 0x00007f99d6fb72a3 epoll_event_loop_once (libtevent.so.0)<br>
> #14 0x00007f99d6fb5787 std_event_loop_once (libtevent.so.0)<br>
> #15 0x00007f99d6fb1fed _tevent_loop_once (libtevent.so.0)<br>
> #16 0x00007f99dec4c3f7 verto_run (libverto.so.1)<br>
> #17 0x00005576845795ab main (krb5kdc)<br>
> #18 0x00007f99de8acfe0 __libc_start_main (libc.so.6)<br>
> #19 0x00005576845798f0 _start (krb5kdc)<br>
<span class="HOEnZb"><font color="#888888"><br>
> --<br>
> Manage your subscription for the Freeipa-users mailing list:<br>
> <a href="https://www.redhat.com/mailman/listinfo/freeipa-users" rel="noreferrer" target="_blank">https://www.redhat.com/mailman/listinfo/freeipa-users</a><br>
> Go to <a href="http://freeipa.org" rel="noreferrer" target="_blank">http://freeipa.org</a> for more info on the project<br>
<br>
--<br>
Manage your subscription for the Freeipa-users mailing list:<br>
<a href="https://www.redhat.com/mailman/listinfo/freeipa-users" rel="noreferrer" target="_blank">https://www.redhat.com/mailman/listinfo/freeipa-users</a><br>
Go to <a href="http://freeipa.org" rel="noreferrer" target="_blank">http://freeipa.org</a> for more info on the project<br>
</font></span></blockquote></div><br></div>